13718918cb
don't use NULL when we mean 0
Johan Danielsson
2002-09-10 19:04:55 +00:00
803f0a416a
x
Johan Danielsson
2002-09-10 15:23:54 +00:00
195194ee2a
include dep libraries in LIB_*
Johan Danielsson
2002-09-10 15:23:38 +00:00
833fd5e9fb
change some lingering krb_err_base
Johan Danielsson
2002-09-10 15:20:46 +00:00
6e9f0b9044
we don't set package_libdir anymore, so no point in testing for it
Johan Danielsson
2002-09-10 15:14:50 +00:00
879f55acdc
x
Johan Danielsson
2002-09-10 14:31:32 +00:00
cd55c75bea
move krb4 test before test for openssl, and bail out if krb4 is requested, but the crypto library is not the same as krb4
Johan Danielsson
2002-09-10 14:31:19 +00:00
10f751e816
filter contents of LDFLAGS
Johan Danielsson
2002-09-10 14:29:47 +00:00
e22c90f027
x
Johan Danielsson
2002-09-09 22:29:32 +00:00
79d62a87b5
subst INCLUDE_des
Johan Danielsson
2002-09-09 22:29:26 +00:00
001ad99baf
add INCLUDE_des to cflags
Johan Danielsson
2002-09-09 22:29:06 +00:00
77e19bf173
use AC_CONFIG_SRCDIR
Johan Danielsson
2002-09-09 22:27:54 +00:00
3bc2349224
remove some unneeded stuff
Johan Danielsson
2002-09-09 22:27:26 +00:00
03a7ed8ec5
(do_524init): free principals
Johan Danielsson
2002-09-09 22:17:53 +00:00
a826b0381d
x
Johan Danielsson
2002-09-09 22:16:34 +00:00
2ae9f47e8e
x
Johan Danielsson
2002-09-09 21:39:25 +00:00
14a69cb275
fix res_nsearch call, but don't use it for now, AIX5 has a broken version that trashes memory
Johan Danielsson
2002-09-09 21:39:19 +00:00
2a4482fa44
update version number
Johan Danielsson
2002-09-09 19:17:01 +00:00
865cfccf3f
don't use LOG_CONS (from NetBSD)
Johan Danielsson
2002-09-09 15:57:24 +00:00
bed2c50846
Credit Sebastian for this potential problem.
Jacques A. Vidrine
2002-09-09 14:43:29 +00:00
1d61dd312f
While decoding arguments for kadm_chpass_with_key, sanity check the number of keys given: must be non-negative, small enough that it is not truncated when stuffed into an int16_t for kadm5_free_key_data, and small enough to avoid integer overflow when calculating the memory required for the keys themselves.
Jacques A. Vidrine
2002-09-09 14:40:08 +00:00
5e6f1d8e82
Use O_EXCL when creating a new keyfile.
Jacques A. Vidrine
2002-09-09 14:22:26 +00:00
3d7ec07178
We need <limits.h> now for UINT_MAX.
Jacques A. Vidrine
2002-09-09 14:16:55 +00:00
296d01fd2b
x
Jacques A. Vidrine
2002-09-09 14:15:20 +00:00
9849899e7f
Validate some counts that may be received from the network: Check that they are non-negative, and that they are small enough to avoid integer overflow when used in memory allocation calculations.
Jacques A. Vidrine
2002-09-09 14:03:03 +00:00
2f8c0d7281
fix typo in previous
Johan Danielsson
2002-09-09 13:41:12 +00:00
6b8b69aa94
x
Johan Danielsson
2002-09-09 13:32:19 +00:00
340f9526a6
don't try to build pam module
Johan Danielsson
2002-09-09 13:32:10 +00:00
36bb92ee64
rename to rk_AUTH_MODULES
Johan Danielsson
2002-09-09 13:31:45 +00:00
d9b6a5a526
x
Johan Danielsson
2002-09-09 13:30:16 +00:00
c91ef9ee7b
only include modules explicitly asked for
Johan Danielsson
2002-09-09 13:30:07 +00:00
4b36aecdf4
change IRIX == 4 to IRIX4
Johan Danielsson
2002-09-09 13:29:09 +00:00
be6a16d87b
x
Johan Danielsson
2002-09-09 13:15:09 +00:00
8507a7a1d2
(krb5_authenticate): use subkey
Johan Danielsson
2002-09-09 13:14:58 +00:00
b7169ebbf0
x
Johan Danielsson
2002-09-05 15:00:11 +00:00
af36f87126
fix warning string
Johan Danielsson
2002-09-05 15:00:03 +00:00
45cc9bab8d
(krb5_vlog_msg): delay message formating till we know we need it
Johan Danielsson
2002-09-05 14:59:14 +00:00
f1feda412e
(getnameinfo_verified): handle the case of forward but no backward DNS information, and also describe the desired behaviour. from Love <lha@stacken.kth.se>
Assar Westerlund
2002-09-05 01:36:27 +00:00
231892e586
x
Johan Danielsson
2002-09-04 22:01:35 +00:00
55cebea766
(sec_vfprintf): free encoded data
Johan Danielsson
2002-09-04 22:01:28 +00:00
0747aa8d55
(gss_decode): release buffer
Johan Danielsson
2002-09-04 22:00:50 +00:00
17f9a949b7
(active_mode): no need to allocate buffer for EPRT
Johan Danielsson
2002-09-04 22:00:12 +00:00
e89ca6b051
x
Johan Danielsson
2002-09-04 21:40:10 +00:00
af18ece01f
free some memory
Johan Danielsson
2002-09-04 21:40:04 +00:00
6d3f51c725
close ccache if we opened it
Johan Danielsson
2002-09-04 21:34:43 +00:00
98bd53fb2d
(rtbl_destroy): free whole table
Johan Danielsson
2002-09-04 21:25:09 +00:00
20912b2ef6
x
Johan Danielsson
2002-09-04 21:13:44 +00:00
6a8ce7e86f
(init_tgs_req): init ret
Johan Danielsson
2002-09-04 21:12:46 +00:00
ece81027d3
x
Johan Danielsson
2002-09-04 20:58:27 +00:00
af09b5af35
test for res_nsearch
Johan Danielsson
2002-09-04 20:57:30 +00:00
f956bbce07
use res_nsearch if we have it (from Larry Greenfield)
Johan Danielsson
2002-09-04 20:55:20 +00:00
e3d19529f2
x
Johan Danielsson
2002-09-04 20:44:41 +00:00
921f49e5cb
(parse_generation): return if there is no generation (spotted by Daniel Kouril)
Johan Danielsson
2002-09-04 20:44:35 +00:00
53e6687014
x
Johan Danielsson
2002-09-04 20:32:24 +00:00
cfcf1125e9
handle new protocol
Johan Danielsson
2002-09-04 20:32:18 +00:00
4c81cc848e
use krb5_err instead of sysloging directly, handle the new protocol, and bail out if an old client tries to connect
Johan Danielsson
2002-09-04 20:31:48 +00:00
4553415279
we need a protocol version string
Johan Danielsson
2002-09-04 20:29:04 +00:00
9dbccbeb68
use ASN1_MALLOC_ENCODE
Johan Danielsson
2002-09-04 18:42:22 +00:00
03b00835b5
set AP_OPTS_USE_SUBKEY
Johan Danielsson
2002-09-04 18:19:41 +00:00
c8ac575762
use ASN1_MALLOC_ENCODE
Johan Danielsson
2002-09-04 16:32:30 +00:00
ddc308c36f
use ASN1_MALLOC_ENCODE
Johan Danielsson
2002-09-04 16:26:05 +00:00
1517173dcb
add convenience macro that allocates a buffer and encoded into that
Johan Danielsson
2002-09-04 15:06:18 +00:00
70f42f5833
x
Johan Danielsson
2002-09-04 13:01:58 +00:00
a4098bf15f
document -P
Johan Danielsson
2002-09-04 13:01:52 +00:00
9012f55e7c
(init_tgs_req): use in_creds->session.keytype literally instead of trying to convert to a list of enctypes (it should already be an enctype)
Johan Danielsson
2002-09-04 12:04:19 +00:00
f7447e1db9
add a test case for parse_reply reading past the given buffer
Assar Westerlund
2002-09-03 21:36:52 +00:00
03d1e81671
(parse_reply): update the arguments to more reasonable types. allow parse_reply-test to call it
Assar Westerlund
2002-09-03 21:34:44 +00:00
b8e46cb9e3
x
Johan Danielsson
2002-09-03 20:27:32 +00:00
4f823a9b69
revert to protocol v1 if not asked for specific protocol
Johan Danielsson
2002-09-03 20:27:01 +00:00
abbbf9b892
x
Johan Danielsson
2002-09-03 20:04:00 +00:00
76f0ff261e
handle protocol version 2
Johan Danielsson
2002-09-03 20:03:46 +00:00
d9a1ec3c10
(krb5_get_forwarded_creds): don't blindly use the local subkey
Johan Danielsson
2002-09-03 19:59:48 +00:00
ae784bda45
add function krb5_crypto_getblocksize that extracts the required blocksize from a crypto context
Johan Danielsson
2002-09-03 19:58:15 +00:00
85a29ba5c7
x
Johan Danielsson
2002-09-03 17:35:15 +00:00
c8b11213da
(wrap_des3): use ETYPE_DES3_CBC_NONE
Johan Danielsson
2002-09-03 17:33:36 +00:00
b553209764
(unwrap_des3): use ETYPE_DES3_CBC_NONE
Johan Danielsson
2002-09-03 17:33:11 +00:00
a8b1543ef9
remove ETYPE_DES3_CBC_NONE_IVEC
Johan Danielsson
2002-09-03 17:32:09 +00:00
b92b2b6b22
remove ENCTYPE_DES3_CBC_NONE_IVEC
Johan Danielsson
2002-09-03 17:31:47 +00:00
2ccdee74a3
get rid of DES3_CBC_encrypt_ivec, just use zero ivec in DES3_CBC_encrypt if passed ivec is NULL
Johan Danielsson
2002-09-03 17:31:12 +00:00
0f97dad9f6
x
Jacques A. Vidrine
2002-09-03 16:22:00 +00:00
9cb7b201a4
Check for truncated integers: the encoded length may be greater than the data buffer.
Jacques A. Vidrine
2002-09-03 16:21:49 +00:00
c2a12cf859
x
Jacques A. Vidrine
2002-09-03 16:15:36 +00:00
430a7ebc58
Verify the combined lengths of the KRB_AP_REP and KRB_PRIV in the set password response.
Jacques A. Vidrine
2002-09-03 16:14:34 +00:00
084816d5ec
just get the length of the encoded authenticator instead of trying to grow a buffer
Johan Danielsson
2002-09-03 15:17:09 +00:00